Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 35 guests and 1 member online
 
Free Business and Tech Magazines and eBooks

You are here: Home arrow Ethical Hacking Discussions and Related Certificationsarrow Network Pen Testingarrow OSCP - Offensive Security Certified Professionalarrow My OSCP journey...
EH-Net
May 24, 2013, 06:51:37 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: 1 ... 3 4 [5] 6 7 ... 10   Go Down
  Print  
Author Topic: My OSCP journey...  (Read 35006 times)
0 Members and 1 Guest are viewing this topic.
sternone
Full Member
***
Offline Offline

Posts: 129


View Profile
« Reply #60 on: August 31, 2012, 07:39:40 AM »

thanks for the advice, I finished these books :

Metasploit - the penetration tester's guide
Practical Packet analysys

I'm currently reading :

The Web Applicatino Hacker's handbook

I'm also extending the lab for 90 days.

This trip is going to take much longer than I anticipated, mostly because of the huge workload of learning stuff on your own, you guys have to admit, the OSCP is all about the lab, it has less to do with learning from the videos and the pdf's. I see them more as a 'practical example' of theoretical stuff you have to learn on yourself. I wish I knew it before so I could have digged the books before I took the OSCP plunge. For that I would say their text what you should know before the OSCP is kind off misleading.

That might explain why almost nobody passes the test the first time.
Logged

Try harder....hmpf!!
cd1zz
Hero Member
*****
Offline Offline

Posts: 561


View Profile WWW
« Reply #61 on: August 31, 2012, 08:54:01 AM »

Almost nobody passes the OSCE the first time. OSCP has a higher success rate the first time around.

Logged

azmatt
Jr. Member
**
Offline Offline

Posts: 79


View Profile WWW
« Reply #62 on: August 31, 2012, 11:10:29 AM »

thanks for the advice, I finished these books :

Metasploit - the penetration tester's guide
Practical Packet analysys

I'm currently reading :

The Web Applicatino Hacker's handbook

I'm also extending the lab for 90 days.

This trip is going to take much longer than I anticipated, mostly because of the huge workload of learning stuff on your own, you guys have to admit, the OSCP is all about the lab, it has less to do with learning from the videos and the pdf's. I see them more as a 'practical example' of theoretical stuff you have to learn on yourself. I wish I knew it before so I could have digged the books before I took the OSCP plunge. For that I would say their text what you should know before the OSCP is kind off misleading.

That might explain why almost nobody passes the test the first time.

It sounds like you're being very smart about this.

Thanks for sharing these books, please post any more that you really wish you had read first.

I want to make sure I'm ready to get the most from the course and I'm planning on just extending 90 days right at the start to make it a non issue.
Logged

GCFA, GCIH, GSEC, GCFE, CHFI
sternone
Full Member
***
Offline Offline

Posts: 129


View Profile
« Reply #63 on: August 31, 2012, 03:39:33 PM »

DAY 20

Okay okay OKAY again ;-)

I listened and read more in the books but meanwhile took 1 server out with many ports opened and worked on it.

Found one way to enter it, so I rooted it, that puts the number on 4.

Not a lot. Step by step... but happy I rooted another one.
Logged

Try harder....hmpf!!
sternone
Full Member
***
Offline Offline

Posts: 129


View Profile
« Reply #64 on: September 01, 2012, 02:10:47 PM »

DAY 21

Another day, another server ? I rooted another one. And this time, I have to say it was really really cool meaning -without spoiling it for the others- that I came across something that I said: Hey I might use this on server X, I tried it, and it worked.

Puts the counter on 5 servers rooted so far. Let's do some more reading further on the day and try another one tomorrow.

Instead of trying several servers at once, I now try to take 1 server out per day and try to hack it. Focused on only 1 server. It seems to be a little less frustrated and let me go deeper on the server but it makes me need to read more and more :-)

Let's see if I can hack another one tomorrow!
Logged

Try harder....hmpf!!
jjwinter
Jr. Member
**
Offline Offline

Posts: 76


View Profile
« Reply #65 on: September 01, 2012, 03:23:45 PM »

Do the servers contain any data that assists you exploiting other systems? Lists of usernames, fake company info, docs, browser history, cookies, etc.. or are just a clean image a server OS with patches missing or hackable services running? Does a hashdump on one help you on others?
Logged
sternone
Full Member
***
Offline Offline

Posts: 129


View Profile
« Reply #66 on: September 01, 2012, 06:04:05 PM »

I can just say: They look just like a real server.

They are not like a clean image with patches missing, that's for sure.
Logged

Try harder....hmpf!!
jjwinter
Jr. Member
**
Offline Offline

Posts: 76


View Profile
« Reply #67 on: September 01, 2012, 07:52:36 PM »

That is good to know, I was concerned that their lab environment would like something I could setup at home, just with more VM's running on better hardware or something.

Is getting through firewalls, managed switches, VLANS, IDS's and the like included? How realistic is this environment?
Logged
sternone
Full Member
***
Offline Offline

Posts: 129


View Profile
« Reply #68 on: September 01, 2012, 08:04:16 PM »

Check out their pdf on their site, they address your questions.

Every server I came across has specific applications running.
Logged

Try harder....hmpf!!
sternone
Full Member
***
Offline Offline

Posts: 129


View Profile
« Reply #69 on: September 02, 2012, 09:52:31 AM »

DAY 22

Started with SQL Injection and managed to bypass one web authenticate login to the admin console on a server I didn't rooted yet. So I guess that's a half server hacked today :-)

I must say, Hacking Web Applications is a BIG subject, and the PDF and the Videos cover it only on the surface, back to reading books now !!!!

I'm also planning to re-read the PDF and review all the videos starting from tomorrow.
Logged

Try harder....hmpf!!
ajohnson
Recruiters
Hero Member
*
Offline Offline

Posts: 1060


aka dynamik


View Profile WWW
« Reply #70 on: September 02, 2012, 09:58:14 AM »

Most servers can be compromised directly, but you will occasionally require information or functionality from another system. You should investigate each application, service, and system thoroughly as you go. Don't assume each system exists in a bubble.
« Last Edit: September 02, 2012, 10:11:46 AM by ajohnson » Logged

WIP: GCFA | www.infosiege.net | @infosiege

The day you stop learning is the day you start becoming obsolete.
sternone
Full Member
***
Offline Offline

Posts: 129


View Profile
« Reply #71 on: September 02, 2012, 01:18:24 PM »

Thanks, just rooted another one and finished the half one too ;-)

That puts the number on 7 boxes rooted.

 Grin
Logged

Try harder....hmpf!!
Jamie.R
Sr. Member
****
Offline Offline

Posts: 429


View Profile
« Reply #72 on: September 02, 2012, 02:25:23 PM »

Cool sounds like its going well Smiley
Logged

OSWP | Hackingdojo Nidan | eCPPT
sternone
Full Member
***
Offline Offline

Posts: 129


View Profile
« Reply #73 on: September 02, 2012, 02:37:10 PM »

Just rooted another one.

I was trying different stuff on that server and in my notes I wrote about a vuln: NOT WORKING - TRIED

But I said, really, and I tried it again, a little more deeper this time, and it worked!

Meaning... I can be wrong too, it's not because I say it's not working that it's not working :-)

Counter is now on 8 rooted boxes.
Logged

Try harder....hmpf!!
shadowzero
Full Member
***
Offline Offline

Posts: 120


It's a UNIX system, I know this!


View Profile
« Reply #74 on: September 02, 2012, 06:54:29 PM »

Just rooted another one.

I was trying different stuff on that server and in my notes I wrote about a vuln: NOT WORKING - TRIED

But I said, really, and I tried it again, a little more deeper this time, and it worked!

Meaning... I can be wrong too, it's not because I say it's not working that it's not working :-)

Counter is now on 8 rooted boxes.

Try harder, try different. Smiley
Logged
Pages: 1 ... 3 4 [5] 6 7 ... 10   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.072 seconds with 24 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Free Business and Tech Magazines and eBooks

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.